web-clickjacking
Warn
Audited by Socket on Sep 20, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally coherent and does not show malware-like installers or credential theft, but it is explicitly an offensive exploitation technique for AI agents. Risk is driven by enabling clickjacking attacks, not by supply-chain or data-exfiltration behavior.
Confidence: 92%Severity: 76%
Audit Metadata